[afnog] VPN client failing to connect

Shepherd Magumo shepherd at snowball.co.za
Mon Dec 15 10:18:46 UTC 2008


172.17.102.145 is the private IP of the Mikrotik where the VPN server is
running. The setup is like below:

| VPN client |---------| 196.44.xx.xx | --------| internet |--------------|
196.xx.xx.40 |-------| NAT |-----------| 172.17.102.145 |-----| VPN server |


On Mon, Dec 15, 2008 at 10:19 AM, Eddy Kayihura M.
<ekayihura at rwandatel.rw>wrote:

>  Hi Shepherd,
>
> Is the 196.44.xx.40 the first IP that this 172.17.102.145 is reaching on
> the Mikrotik?
>
> If not then try to use the first IP of the mikrotik that they reach for the
> VPN connection.
>
> Cheers
>
> Eddy
>
>
> Shepherd Magumo wrote:
>
> Good day,
>
> We are running a Mikrotik VPN server on our network which is behind a NAT.
> From the internet through the public IP 196.xx.xx.40, some networks can
> connect to the VPN server without a problem but this one network with log
> captured below just cannot connect.
> Inorder to troubleshoot further I enabled debug and captured the log below.
> I was hoping for I will easily figure out but no joy at all.
> Please help.
>
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145    pptp,info TCP
> connection established from 196.44.xx.xx
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145    pptp,ppp,info
> <pptp-0>: waiting for call...
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145    pptp,debug,packet
> rcvd Start-Control-Connection-Request from 196.44.xx.xx
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     protocol-version=0x0100
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     framing-capabilities=1
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     bearer-capabilities=1
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     maximum-channels=0
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     firmware-revision=0
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     host-name=
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     vendor-name=Microsoft
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145    pptp,debug,packet
> sent Start-Control-Connection-Reply to 196.44.xx.xx
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     protocol-version=0x0100
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     result-code=1
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     error-code=0
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     framing-capabilities=2
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     bearer-capabilities=0
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     maximum-channels=0
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     firmware-revision=1
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     host-name=Christo Plaatjies
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     vendor-name=MikroTik
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145    pptp,debug,packet
> rcvd Outgoing-Call-Request from 196.44.xx.xx
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     call-id=18572
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     call-serial-number=6
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     minimum-bps=300
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     maximum-bps=100000000
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     bearer-type=3
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     framing-type=3
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     packet-recv-window-size=64
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     packet-processing-delay=0
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     phone-number-length=0
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     phone-number=
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     subaddress=
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145    pptp,ppp,debug
> <196.44.xx.xx>: LCP lowerup
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145    pptp,ppp,debug
> <196.44.xx.xx>: LCP open
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145    pptp,debug,packet
> sent Outgoing-Call-Reply to 196.44.xx.xx
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     call-id=30
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     peers-call-id=18572
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     result-code=1
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     error-code=0
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     cause-code=0
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     connect-speed=100000
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     packet-recv-window-size=100
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     packet-processing-delay=0
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     physical-channel-id=0
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet  <196.44.xx.xx>: rcvd LCP ConfReq id=0x0
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet    <mru 1400>
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet    <magic 0x318e2e1b>
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet    <pcomp>
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet    <accomp>
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet    <callback 0x06>
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet  <196.44.xx.xx>: sent LCP ConfReq id=0x1
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet    <mru 1460>
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet    <magic 0x195f3516>
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet    <auth  mschap2>
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet  <196.44.xx.xx>: sent LCP ConfRej id=0x0
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet    <pcomp>
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet    <accomp>
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145    pptp,debug,packet
> rcvd Set-Link-Info from 196.44.xx.xx
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     peers-call-id=30
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     send-accm=0xffffffff
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     receive-accm=0xffffffff
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145    pptp,debug,packet
> sent Set-Link-Info to 196.44.xx.xx
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     peers-call-id=18572
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     send-accm=0xffffffff
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,debug,packet     receive-accm=0xffffffff
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet  <196.44.xx.xx>: rcvd LCP ConfAck id=0x1
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet    <mru 1460>
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet    <magic 0x195f3516>
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet    <auth  mschap2>
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet  <196.44.xx.xx>: rcvd LCP ConfReq id=0x1
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet    <mru 1400>
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet    <magic 0x318e2e1b>
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet    <callback 0x06>
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet  <196.44.xx.xx>: sent LCP ConfAck id=0x1
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet    <mru 1400>
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet    <magic 0x318e2e1b>
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet    <callback 0x06>
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145    pptp,ppp,debug
> <196.44.xx.xx>: LCP opened
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet  <196.44.xx.xx>: sent CHAP Challenge id=0x1
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet     <challenge len=10>
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145
> pptp,ppp,debug,packet     <name Christo Plaatjies>
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145    pptp,ppp,debug
> <196.44.xx.xx>: LCP lowerdown
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145    pptp,ppp,debug
> <196.44.xx.xx>: LCP closed
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145    pptp,ppp,info
> <pptp-0>: terminating... - disconnected
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145    pptp,ppp,debug
> <196.44.xx.xx>: LCP lowerdown
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145    pptp,ppp,debug
> <196.44.xx.xx>: LCP down event in starting state
> 2008-12-12 15:54:23    Local7.Debug    172.17.102.145    pptp,ppp,info
> <pptp-0>: disconnected
>
>
> regards,
>
> Shepherd
>
> ------------------------------
>
> _______________________________________________
> afnog mailing listhttp://afnog.org/mailman/listinfo/afnog
>
>
>
> --
> Regards,
>
> Eddy
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://afnog.org/pipermail/afnog/attachments/20081215/2568feb1/attachment-0001.html>


More information about the afnog mailing list